Pokusaj hakovanja ili...
Prelazio sam juce kroz 404 log i vidim sledece:
1 3 2010-10-21 phpMyAdmin-2.6.2-pl1/scripts/setup.php 2 3 2010-10-21 phpMyAdmin-2.6.3/scripts/setup.php 3 3 2010-10-21 phpMyAdmin-2.6.3-rc1/scripts/setup.php 4 3 2010-10-21 phpMyAdmin-2.6.3-pl1/scripts/setup.php 5 3 2010-10-21 phpMyAdmin-2.6.4-rc1/scripts/setup.php 6 3 2010-10-21 phpMyAdmin-2.6.4-pl1/scripts/setup.php 7 3 2010-10-21 phpMyAdmin-2.6.4-pl2/scripts/setup.php 8 3 2010-10-21 phpMyAdmin-2.6.4-pl3/scripts/setup.php 9 3 2010-10-21 phpMyAdmin-2.6.4-pl4/scripts/setup.php 10 3 2010-10-21 phpMyAdmin-2.6.4/scripts/setup.php 11 3 2010-10-21 phpMyAdmin-2.7.0-beta1/scripts/setup.php 12 3 2010-10-21 phpMyAdmin-2.7.0-rc1/scripts/setup.php 13 3 2010-10-21 phpMyAdmin-2.7.0-pl1/scripts/setup.php 14 3 2010-10-21 phpMyAdmin-2.7.0-pl2/scripts/setup.php 15 3 2010-10-21 phpMyAdmin-2.7.0/scripts/setup.php 16 3 2010-10-21 phpMyAdmin-2.8.0-beta1/scripts/setup.php 17 3 2010-10-21 phpMyAdmin-2.8.0-rc1/scripts/setup.php 18 3 2010-10-21 phpMyAdmin-2.8.0-rc2/scripts/setup.php 19 3 2010-10-21 phpMyAdmin-2.8.0/scripts/setup.php 20 3 2010-10-21 phpMyAdmin-2.8.0.1/scripts/setup.php 21 3 2010-10-21 phpMyAdmin-2.8.0.2/scripts/setup.php 22 3 2010-10-21 phpMyAdmin-2.8.0.3/scripts/setup.php 23 3 2010-10-21 phpMyAdmin-2.8.0.4/scripts/setup.php 24 3 2010-10-21 phpMyAdmin-2.8.1-rc1/scripts/setup.php 25 3 2010-10-21 phpMyAdmin-2.8.1/scripts/setup.php 26 3 2010-10-21 phpMyAdmin-2.8.2/scripts/setup.php 27 3 2010-10-21 sqlmanager/scripts/setup.php 28 3 2010-10-21 mysqlmanager/scripts/setup.php 29 3 2010-10-21 p/m/a/scripts/setup.php 30 3 2010-10-21 phpmanager/scripts/setup.php 31 3 2010-10-21 php-myadmin/scripts/setup.php 32 3 2010-10-21 phpmy-admin/scripts/setup.php 33 3 2010-10-21 webadmin/scripts/setup.php 34 3 2010-10-21 sqlweb/scripts/setup.php 35 3 2010-10-21 mysql-admin/scripts/setup.php ..... ..... 41 3 2010-11-22 admin/login.php 42 3 2010-11-22 b2b/admin/login.php 43 3 2010-11-22 cart/admin/login.php 44 3 2010-11-22 catalog/admin/login.php 45 3 2010-11-22 ecommerce/admin/login.php 46 3 2010-11-22 eshop/admin/login.php 47 3 2010-11-22 negozio/admin/login.php 48 3 2010-11-22 public/admin/login.php 49 3 2010-11-22 shop/admin/login.php 50 3 2010-11-22 shops/admin/login.php 51 3 2010-11-22 store/admin/login.php 52 3 2010-11-22 oscommerce/admin/login.php 53 3 2010-11-22 os/admin/login.php 54 3 2010-11-22 osc/admin/login.php Nasao sam slicne linije i za prethodni period. Jel to neko samo skenira sajt sa nekim softverom ili je nesto vise u pitanju? Znam da nije moguce znati 100% na osnovu samo linije u logu ali kakva su generalna iskustva posto mi web security nije jaca strana mada sam neke osnovne stvari vec implementirao na sajtu. |
Neko te je skenirao u potrazi za default instalacijama, moguce je da je i bot. Ako imas neku "poznatu" web app obavezno je azuriraj na zadnju verziju.
|
Znam da ima botova koji prikupljaju podatke o instaliranim applikacijama za potrebe neke statistike, ali ovaj ide do login strane i setupa, tako da je bas sumnjivo.
Prolistaj malo ovo premda je moguce da i tvoj host trazi sigurnosne rupe sa ovim i li necim slicnim. |
Hvala na odgovorima. Moguce da je host u pitanju ili neko isprobava teren. Sve je updateovano i uradjene su neke mere predostroznosti ali nikada se ne moze znati.
|
Vreme je GMT +2. Trenutno vreme je 14:01. |
Powered by vBulletin® Verzija 3.6.8
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Copyright © DevProTalk. All Rights Reserved.